VendorsRed Hatenterprise_linux9.0
Vulnerabilities

Red Hat Enterprise Linux 9.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

601CVEs
CVE-2023-0494
A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege elevation on systems where the X server runs privileged and remote code execution for ssh X forwarding sessions.
Published 2023-03-27 · Modified
7.8EPSS 0.009
CVE-2024-0193
Kernel: netfilter: use-after-free in nft_trans_gc_catchall_sync leads to privilege escalation
Published 2024-01-02 · Analyzed
7.8EPSS 0.008
CVE-2023-47038
Perl: write past buffer end via illegal user-defined unicode property
Published 2023-12-18 · Modified
7.8EPSS 0.008
CVE-2023-3640
Kernel: x86/mm: a per-cpu entry area leak was identified through the init_cea_offsets function when prefetchnta and prefetcht2 instructions being used for the per-cpu entry area mapping to the user space
Published 2023-07-24 · Modified
7.8EPSS 0.008
CVE-2023-5367
Xorg-x11-server: out-of-bounds write in xichangedeviceproperty/rrchangeoutputproperty
Published 2023-10-25 · Modified
7.8EPSS 0.006
CVE-2023-2603
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.
Published 2023-06-06 · Modified
7.8EPSS 0.006
CVE-2025-6035
Gimp: gimp integer overflow
Published 2025-06-13 · Modified
7.8EPSS 0.006
CVE-2023-4147
Kernel: netfilter: nf_tables_newrule when adding a rule with nfta_rule_chain_id leads to use-after-free
Published 2023-08-07 · Modified
7.8EPSS 0.006
CVE-2023-5764
Ansible: template injection
Published 2023-12-12 · Modified
7.8EPSS 0.005
CVE-2022-1652
Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.
Published 2022-05-31 · Modified
7.8EPSS 0.005
CVE-2023-4692
Grub2: out-of-bounds write at fs/ntfs.c may lead to unsigned code execution
Published 2023-10-25 · Modified
7.8EPSS 0.005
CVE-2022-25308
A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.
Published 2022-09-06 · Modified
7.8EPSS 0.005
CVE-2023-42753
Kernel: netfilter: potential slab-out-of-bound access due to integer underflow
Published 2023-09-25 · Modified
7.8EPSS 0.005
CVE-2026-59087
Gimp: heap buffer overflow in `file-seattle-filmworks` load — `fread` writes attacker-controlled length into undersized allocation
Published 2026-08-10 · Analyzed
7.8EPSS 0.005
CVE-2023-2491
A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:latex" function in ob-latex.el can result in arbitrary command execution. This CVE exists because of a CVE-2023-28617 security regression for the emacs package in Red Hat Enterprise Linux 8.8 and Red Hat Enterprise Linux 9.2.
Published 2023-05-17 · Modified
7.8EPSS 0.005
CVE-2025-26597
Xorg: xwayland: buffer overflow in xkbchangetypesofkey()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-5914
Libarchive: double free at archive_read_format_rar_seek_data() in archive_read_support_format_rar.c
Published 2025-06-09 · Modified
7.8EPSS 0.004
CVE-2025-26595
Xorg: xwayland: buffer overflow in xkbvmodmasktext()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26596
Xorg: xwayland: heap overflow in xkbwritekeysyms()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2023-43787
Libx11: integer overflow in xcreateimage() leading to a heap overflow
Published 2023-10-10 · Modified
7.8EPSS 0.004
CVE-2025-26599
Xorg: xwayland: use of uninitialized pointer in compredirectwindow()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26598
Xorg: xwayland: out-of-bounds write in createpointerbarrierclient()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2026-59091
Gimp: gimp: multiple vulnerabilities in file format plugins via crafted image file
Published 2026-08-10 · Analyzed
7.8EPSS 0.004
CVE-2022-1158
A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the page's pfn. As vaddr and vm_pgoff are controllable by user-mode processes, this flaw allows unprivileged local users on the host to write outside the userspace region and potentially corrupt the kernel, resulting in a denial of service condition.
Published 2022-08-05 · Modified
7.8EPSS 0.004
CVE-2026-40915
Gimp: gimp: heap buffer overflow due to integer overflow in fits image loader
Published 2026-04-15 · Analyzed
7.8EPSS 0.004
CVE-2025-26594
X.org: xwayland: use-after-free of the root cursor
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26600
Xorg: xwayland: use-after-free in playreleasedevents()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26601
Xorg: xwayland: use-after-free in syncinittrigger()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2024-9675
Buildah: buildah allows arbitrary directory mount
Published 2024-10-09 · Modified
7.8EPSS 0.004
CVE-2026-4775
Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing
Published 2026-03-24 · Modified
7.8EPSS 0.004
CVE-2026-66758
Gimp: integer overflow in file-fits plugin causes a heap-based buffer overflow on crafted fits images
Published 2026-07-27 · Modified
7.8EPSS 0.004
CVE-2022-3715
A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems.
Published 2023-01-05 · Modified
7.8EPSS 0.004
CVE-2024-0409
Xorg-x11-server: selinux context corruption
Published 2024-01-18 · Modified
7.8EPSS 0.004
CVE-2023-3812
Kernel: tun: bugs for oversize packet when napi frags enabled in tun_napi_alloc_frags
Published 2023-07-24 · Modified
7.8EPSS 0.003
CVE-2022-1998
A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
Published 2022-06-09 · Modified
7.8EPSS 0.003
CVE-2026-58384
Gimp: gimp: integer overflow in read_rle_channel()
Published 2026-07-07 · Undergoing Analysis
7.8EPSS 0.003
CVE-2026-58380
Gimp: gimp: stack buffer overflow in pnmscanner_gettoken()
Published 2026-07-06 · Undergoing Analysis
7.8EPSS 0.003
CVE-2022-2964
A flaw was found in the Linux kernel’s driver for the ASIX AX88179_178A-based USB 2.0/3.0 Gigabit Ethernet Devices. The vulnerability contains multiple out-of-bounds reads and possible out-of-bounds writes.
Published 2022-09-09 · Modified
7.8EPSS 0.003
CVE-2024-0646
Kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination
Published 2024-01-17 · Modified
7.8EPSS 0.003
CVE-2023-0664
A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.
Published 2023-03-29 · Modified
7.8EPSS 0.003
← Prev3 / 16Next →